Senior Software Security Engineer
$139,200–$196,000 year
RemoteUnited States
Job Summary
Maintain core abuse prevention systems and build new detection rules to identify and prevent evolving platform abuse such as spam, AI/token, and SEO optimization campaigns. Become a core maintainer for the in-house Ruby on Rails abuse platform, supporting new features and improving agentic AI capabilities to reduce HITL operational load. Lead collaboration with peer engineering teams to deliver safety improvements for the GitLab product, resolve automation gaps, and create efficient automated processes. Create and maintain documentation including runbooks and procedures to support incident response and platform hardening. This role sits within the Trust and Safety team, which relies on automations and LLM-aided anomaly detection to proactively keep abusive behaviors off GitLab.com. The team closely collaborates with Security Operations, Threat Intelligence, and the Red Team to combat abuse campaigns and harden platform defenses.
Required Qualifications
- Strong software development skills with experience in Ruby/Rails
- Experience working on distributed applications with large codebases and deployed in cloud environments
- Strong experience with cloud native development (Google Cloud Platform (GCP) and/or AWS)
- Experience working on an AI native development team maintaining teams of agents and acting as a code reviewer and experience abstracting your role away from writing code for most cases
Desired Qualifications
- Passion/desire to proactively develop security engineering skills
- Interest in 'thinking like a hacker' and defending against attacks with an 'automation first' mindset
- Interest in handling trust and safety security incidents and collaborating with engineering to harden platform defenses to combat abuse campaigns
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.